Building Threat Detection for your Cloud Environment

Building Threat Detection for your Cloud Environment

In this episode of the Virtual Coffee with Ashish edition, we spoke with Ashwin Patil (@ashwinpatil) who is a returning guest from Season 1 of the Cloud Security Podcast. Ashwin is a Senior Program Manager at Microsoft (@Microsoft).

Last time Ashwin came to speak about Threat Intelligence in Azure - Click here to checkout the Season 1 Episode here.

In this episode, Ashwin & Ashish spoke about

  • Threat Detection Pre- Cloud and In Cloud
  • Who should be doing threat hunting?
  • TTP - Tactics Tool and Procedures
  • What is cloud detection research ?
  • Things to consider in Threat Hunting Planning Phase
  • When do yo need a Threat Hunting Team?
  • Azure Sentinel and Threat Hunting
  • Threat Detection Playbooks
  • How to get hands on experience with Azure Sentinel
  • The MITRE Attack Framework
  • KQL - Kusto Query Language
  • Threat Hunting in Azure vs AWS
  • And much more…

ShowNotes and Episode Transcript on www.cloudsecuritypodcast.tv

Twitter - @kaizenteq @hashishrajan

If you want to watch videos of this and previous episodes:

- Youtube Channel: https://lnkd.in/gUHqSai

Jaksot(344)

Google Cloud Security Fundamentals - Level 2

Google Cloud Security Fundamentals - Level 2

In this episode of the Virtual Coffee with Ashish edition, we spoke with Jonathan Brodie Senior Cloud Security Engineer, ITV Episode ShowNotes, Links and Transcript on Cloud Security Podcast: www.clou...

27 Helmi 202239min

Google Cloud Security Fundamentals

Google Cloud Security Fundamentals

In this episode of the Virtual Coffee with Ashish edition, we spoke with Antoni Tzavelas (@antoniscloud) Google Cloud Certification Trainer, Antoni Training Episode ShowNotes, Links and Transcript on ...

20 Helmi 202233min

Red Team in Google Cloud

Red Team in Google Cloud

In this episode of the Virtual Coffee with Ashish edition, we spoke with Brad Richardson (@Richarjb) Red Team and Vulnerability Management Episode ShowNotes, Links and Transcript on Cloud Security Pod...

13 Helmi 202251min

How to Automate Security in Google Cloud?

How to Automate Security in Google Cloud?

In this episode of the Virtual Coffee with Ashish edition, we spoke with Jason Dyke (@jasonadyke) a Staff Security Engineer at Blocks (@Blocks). Episode ShowNotes, Links and Transcript on Cloud Securi...

6 Helmi 202254min

Authorization Control for Enterprise in Cloud

Authorization Control for Enterprise in Cloud

In this episode of the Virtual Coffee with Ashish edition, we spoke with Gal Helemski (@Linkedin-Gal Helemski) CoFounder, CTO & CPO at PlainID (@plainID_authZ). Episode ShowNotes, Links and Transcript...

30 Tammi 202241min

McFee and FireEye join forces for XDR

McFee and FireEye join forces for XDR

Cloud Security News this week 26 Jan 2022 Early December on Cloud Security News, we shared that Symphony Technology Group had acquired McAfee for 4 Billion along with FireEye for 1.2 Billion. The me...

26 Tammi 20223min

AWS IAM Getting Started

AWS IAM Getting Started

In this episode of the Virtual Coffee with Ashish edition, we spoke with Ian Mckay (@iann0036), a AWS Community Hero, AWS APN Ambassador who has a lot of popular open sources projects in the AWS secur...

23 Tammi 202240min

Remote Access Trojans target Public Cloud Infrastructure

Remote Access Trojans target Public Cloud Infrastructure

Cloud Security News this week 19 Jan 2022 Cisco Talos Researchers have shared in a blog last week that a trio of remote access Trojans (RATs)—Nanocore, Netwire and AsyncRAT—are being spread in a ca...

19 Tammi 20227min